Privacy Policy
Last updated: March 1, 2026
1. Who We Are
HireSmith operates the website at hiresmith.io (the "Service"). This Privacy Policy explains what data we collect, how we use it, and your rights regarding your personal data.
Contact: support@hiresmith.io
2. Data We Collect
Information you provide:
- Account information: email address and password (hashed, never stored in plain text)
- Resume content: name, contact information, work experience, education, skills
- Payment information: processed by Stripe — we never see or store your full card details
- Email address if you voluntarily provide it before signing up
Information collected automatically:
- Usage analytics (pages visited, features used) via Vercel Analytics — no personal identifiers
- Browser type and approximate location (country level) from server logs
- Cookies: session cookies for authentication, analytics cookies (see Section 7)
3. How We Use Your Data
- To provide, maintain, and improve the Service
- To process payments and manage your subscription
- To send you account-related emails (password resets, billing receipts)
- To generate resume content using Claude AI (your data is sent to Anthropic's API — see Section 5)
- To analyze aggregate usage patterns to improve the product
We do not sell your personal data to third parties. We do not use your data for advertising purposes.
4. Legal Basis for Processing (GDPR)
For users in the European Economic Area, our legal bases are:
- Contract performance: Processing necessary to provide the Service you signed up for
- Legitimate interests: Analytics and service improvement
- Consent: Non-essential cookies (you can withdraw consent via the cookie banner)
- Legal obligation: Tax and payment records
5. Third-Party Services
- Anthropic (Claude AI): Resume content is sent to Anthropic's API for generation. Anthropic's privacy policy applies to this processing. We do not permit Anthropic to use your data for training.
- Supabase: Database and authentication provider. Data is stored on Supabase infrastructure.
- Stripe: Payment processor. Your payment data is handled by Stripe under their privacy policy.
- Vercel: Hosting and analytics. Vercel Analytics collects anonymized usage data.
6. Data Retention
We retain your account data for as long as your account is active. Resume data is stored until you delete it or close your account. You can delete your account at any time in Settings, which permanently removes all your data within 30 days.
7. Cookies
We use:
- Essential cookies: Authentication sessions — required for the Service to function
- Analytics cookies: Vercel Analytics for aggregate traffic data — no personal identifiers
You can manage cookie preferences through the banner shown on your first visit, or by adjusting your browser settings.
8. Your Rights
Under GDPR and similar laws, you have the right to:
- Access: Request a copy of the personal data we hold about you
- Correction: Request correction of inaccurate data
- Deletion: Request deletion of your data (right to be forgotten)
- Portability: Request your data in a portable format
- Objection: Object to processing based on legitimate interests
- Withdraw consent: At any time for consent-based processing
To exercise your rights, contact us at support@hiresmith.io. We will respond within 30 days.
9. International Transfers
Your data may be processed in countries outside your own (including the United States). We ensure appropriate safeguards are in place through standard contractual clauses or by using services that are GDPR-compliant.
10. Children
The Service is not intended for anyone under the age of 16. We do not knowingly collect data from children. If you believe a child has provided us with personal data, contact us and we will delete it promptly.
11. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes by email or through the Service. Continued use after changes constitutes acceptance.
12. Contact & Complaints
For privacy-related questions or to exercise your rights, contact us at support@hiresmith.io.
If you are in the EU and are unhappy with our response, you have the right to lodge a complaint with your local data protection authority.